On 24.9.2011 01:30, Simo Sorce wrote:
The patch to fix password expiration for user broke password expiration
for most other principals as it was forcing to set an arbitrary date on
all principals unconditionally.
Moved the code as is in the right spot (only if the principal is an ipa
user and

Work around pkisilent bugs.
Check directory manager password for invalid characters.
(https://bugzilla.redhat.com/show_bug.cgi?id=658641)
Shell-escape pkisilent command-line arguments.
(https://bugzilla.redhat.com/show_bug.cgi?id=741180)
Once the bugs are fixed, the workarounds should be

On 09/26/2011 08:15 AM, Endi Sukma Dewata wrote:
On 9/23/2011 11:05 AM, Petr Vobornik wrote:
https://fedorahosted.org/freeipa/ticket/1841
The column header for the attributes table (IPA.attributes_widget) does
not cover the entire width of the table. This problem appears in the
adder dialog

On 09/17/2011 12:19 AM, Endi Sukma Dewata wrote:
The DNS zone details page has been modified to use radio buttons for
active zone and dynamic update fields, and text area for BIND update
policy field.
Ticket #1781, #1785
In ticket #1781 is a note: To be consistent with HBAC/sudo rules,

On Mon, 2011-09-26 at 08:54 -0400, Rob Crittenden wrote:
Simo Sorce wrote:
On Mon, 2011-09-26 at 11:22 +0200, Martin Kosek wrote:
IPA server, client and replica installation and WebUI worked for me.
This patch seems to defeat the purpose as we are still allowing krb auth
on locations

On 09/17/2011 01:42 AM, Endi Sukma Dewata wrote:
Ticket #1783
It needs rebase and removing 'undo: false' because it's based on your
patch 270 and has conflicts with 271-4a and 271-4b.
Should we add 'description' field to HBAC and SUDO rule add dialogs, to
be consistent with other HBAC and

The IPA.adder_dialog has been modified such that it shows the
arrow first then the arrow.
Ticket #1858
Pushed to master and ipa-2-1 under one-liner/trivial rule.
--
Endi S. Dewata
___
Freeipa-devel mailing list
Freeipa-devel@redhat.com

On 9/26/2011 10:01 AM, Petr Vobornik wrote:
On 09/17/2011 01:42 AM, Endi Sukma Dewata wrote:
Ticket #1783
It needs rebase and removing 'undo: false' because it's based on your
patch 270 and has conflicts with 271-4a and 271-4b.
Rebased. I also removed the 'undo: false' from this patch.

The IPAdmin class in ipaserver/ipaldap.py has methods with anonymous
undefined parameter lists.
For example:
def getList(self,*args):
In Python syntax this means you can call getList with any positional
parameter list you want.
This is bad because:
1) It's not true, *args gets passed to

We can't assume that there will be only one naming context. Look at each
one until we find an IPA one.
Add logging so you can know that a migration attempt fails and why.
rob
From 4a3b5c99341c79279936a13c4407468d5accdd04 Mon Sep 17 00:00:00 2001
From: Rob Crittenden rcrit...@redhat.com
Date: